From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> Date: Wed, 4 Sep 2019 21:36:41 +0200 > The following patchset contains Netfilter fixes for net: > > 1) br_netfilter drops IPv6 packets if ipv6 is disabled, from Leonardo Bras. > > 2) nft_socket hits BUG() due to illegal skb->sk caching, patch from > Fernando Fernandez Mancera. > > 3) nft_fib_netdev could be called with ipv6 disabled, leading to crash > in the fib lookup, also from Leonardo. > > 4) ctnetlink honors IPS_OFFLOAD flag, just like nf_conntrack sysctl does. > > 5) Properly set up flowtable entry timeout, otherwise immediate > removal by garbage collector might occur. > > You can pull these changes from: > > git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf.git Pulled, thanks.